CVE-2026-91805
- EPSS 0.12%
- Veröffentlicht 23.09.2026 07:50:51
- Zuletzt bearbeitet 08.10.2026 12:20:30
A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s PDF page-tree handling. A specially crafted PDF can trigger page-structure changes during rendering, causing the application to access released page objects and resulting in memory co...
CVE-2026-91802
- EPSS 0.12%
- Veröffentlicht 23.09.2026 07:50:37
- Zuletzt bearbeitet 08.10.2026 13:56:03
A heap-based out-of-bounds write vulnerability exists in Foxit PDF Editor/Reader’s WebP image decoding due to improper handling of bitmap stride and target buffer formats. Successful exploitation could result in an application crash.
CVE-2026-91804
- EPSS 0.12%
- Veröffentlicht 23.09.2026 07:50:34
- Zuletzt bearbeitet 08.10.2026 13:58:38
A heap-based out-of-bounds write vulnerability exists in Foxit PDF Editor/Reader’s rendering of Circle annotations with malformed Cloudy appearance streams in specially crafted PDF files. Insufficient validation of the appearance geometry can result ...
CVE-2026-91806
- EPSS 0.12%
- Veröffentlicht 23.09.2026 07:50:29
- Zuletzt bearbeitet 08.10.2026 12:24:50
A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s handling of PDF form fields. Embedded JavaScript may access form-field references after the corresponding fields have been released, resulting in an application crash.
CVE-2026-91798
- EPSS 0.1%
- Veröffentlicht 23.09.2026 07:50:17
- Zuletzt bearbeitet 23.09.2026 17:58:26
A local privilege escalation vulnerability exists in the update daemon of Foxit PDF Editor/Reader due to an insecure permission configuration that allows the configuration file to be modified by regular users, which may lead to arbitrary script execu...
CVE-2026-91810
- EPSS 0.11%
- Veröffentlicht 23.09.2026 07:50:02
- Zuletzt bearbeitet 08.10.2026 14:04:13
A heap-based out-of-bounds read vulnerability exists in Foxit PDF Editor/Reader’s handling of malformed PDF image masks. Inconsistent image metadata may cause incorrect alpha-channel processing during rendering, resulting in an out-of-bounds read and...
CVE-2026-91811
- EPSS 0.12%
- Veröffentlicht 23.09.2026 07:49:58
- Zuletzt bearbeitet 23.09.2026 17:58:26
A heap-based out-of-bounds write vulnerability exists in Foxit PDF Editor/Reader’s PRC parser due to insufficient validation of vertex indices in triangular fan texture meshes. Successful exploitation could result in memory corruption and an applicat...
CVE-2026-91815
- EPSS 0.13%
- Veröffentlicht 23.09.2026 07:49:31
- Zuletzt bearbeitet 08.10.2026 14:00:25
Foxit PDF Editor/Reader does not perform sufficient verification of the JPEG2000 image metadata in the PDF file, which leads to out-of-bounds write in the heap buffer during decoding, potentially causing the program to crash and introducing the risk ...
CVE-2026-91817
- EPSS 0.11%
- Veröffentlicht 23.09.2026 07:49:15
- Zuletzt bearbeitet 01.10.2026 20:23:59
A heap-based out-of-bounds read vulnerability exists in Foxit PDF Editor/Reader’s handling of wide strings in embedded PDF JavaScript. Insufficient validation of string-deletion ranges can cause an integer underflow, resulting in an out-of-bounds rea...
CVE-2026-91818
- EPSS 0.12%
- Veröffentlicht 23.09.2026 07:49:11
- Zuletzt bearbeitet 08.10.2026 13:59:31
A use-after-free vulnerability exists in Foxit PDF Editor/Reader’s JavaScript handling of PDF annotations. Reentrant page-event processing during annotation enumeration may release the associated page object, which is subsequently accessed, resulting...